An issue in Clojure versions 1.20 to 1.12.0-alpha5 allows an attacker to cause a denial of service (DoS) via the clojure.core$partial$fn__5920 function.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
04 Nov 2025, 22:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
04 Nov 2025, 19:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
28 May 2025, 19:56
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://hackmd.io/%40fe1w0/rymmJGida - Exploit | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/25FKUOYXQZGGJMFUM5HJABWMIX2TILRV/ - Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SWWK2SO2MH4SXPO6L444MM6LHVLVFULV/ - Third Party Advisory | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YFPGUDXMW6OXKIDGCOZFEAXO74VQIB2T/ - Third Party Advisory | |
| CPE | cpe:2.3:a:clojure:clojure:1.12.0:alpha1:*:*:*:*:*:* cpe:2.3:a:clojure:clojure:1.12.0:alpha3:*:*:*:*:*:* cpe:2.3:a:clojure:clojure:1.12.0:alpha5:*:*:*:*:*:* cpe:2.3:a:clojure:clojure:*:*:*:*:*:*:*:* cpe:2.3:a:clojure:clojure:1.12.0:alpha8:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:38:*:*:*:*:*:*:* cpe:2.3:a:clojure:clojure:1.12.0:alpha4:*:*:*:*:*:* cpe:2.3:a:clojure:clojure:1.12.0:alpha6:*:*:*:*:*:* cpe:2.3:a:clojure:clojure:1.12.0:alpha2:*:*:*:*:*:* cpe:2.3:a:clojure:clojure:1.12.0:alpha7:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:39:*:*:*:*:*:*:* cpe:2.3:o:fedoraproject:fedora:40:*:*:*:*:*:*:* |
|
| First Time |
Clojure clojure
Fedoraproject Fedoraproject fedora Clojure |
21 Nov 2024, 08:56
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://hackmd.io/%40fe1w0/rymmJGida - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/25FKUOYXQZGGJMFUM5HJABWMIX2TILRV/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/SWWK2SO2MH4SXPO6L444MM6LHVLVFULV/ - | |
| References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/YFPGUDXMW6OXKIDGCOZFEAXO74VQIB2T/ - |
13 Aug 2024, 19:35
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| CWE | CWE-502 |
24 Mar 2024, 03:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
23 Mar 2024, 03:15
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
29 Feb 2024, 02:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-02-29 02:15
Updated : 2025-11-04 22:15
NVD link : CVE-2024-22871
Mitre link : CVE-2024-22871
CVE.ORG link : CVE-2024-22871
JSON object : View
Products Affected
clojure
- clojure
fedoraproject
- fedora
CWE
CWE-502
Deserialization of Untrusted Data
